CVE-2021-22555 – Linux Foundation / Linux kernel – Out-of-bounds write

CVE-2021-22555 is an out-of-bounds write vulnerability impacting Linux kernel versions 5.11 and earlier. An exploit was observed in open source and a link to an exploit was shared in the underground.

Summary:

CVE-2021-22555 is an out-of-bounds write vulnerability impacting Linux kernel versions 5.11 and earlier. An exploit was observed in open source and a link to an exploit was shared in the underground.

PoC Links(if available):

Packet Storm exploit –
https://packetstormsecurity.com/files/163528/Linux-Kernel-Netfilter-Heap-Out-Of-Bounds-Write.html

Known Counter Measures:

The Linux Foundation addressed the vulnerability in a software development platform with a patch.

Links to patches(if available)

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/net/netfilter/x_tables.c?id=b29c457a6511435960115c0f548c4360d5f4801d